• Nullcon Goa Sep 2022
  • Resume and Career Clinic

Resume and Career Clinic

TIME: TBA
DATE: Sept. 10, 2022
PLACE: Grand Hyatt Goa, India

Registeration Closed

Job Role: Security Consultant
Location: Work From Home
Technical requirements: 3-5 years of experience in web/application security testing. Expert knowledge in Application Security, Infrastructure security, mobile application security, and a decent knowledge or expertise in Cloud Security. The person should be capable of troubleshooting the common engagement issues. Knowledge of Kubernetes and Dockers would be highly appreciated but not mandatory. The candidate must have capabilities of appropriately assigning the risk ratings to the vulnerabilities and eliminating false positives. Must have automation experience with scripting. In addition, the candidate must be capable of establishing and maintaining a personal testing environment.
Job Description: https://jobs.lever.co/Chaleit/60ce1d9d-bef4-4542-9303-7e35e6d75ce5


Job Role: Senior Security Consultant
Location: Work From Home
Technical requirements: Expert knowledge in Application Security, Infrastructure security, mobile application security, and a decent knowledge or experience in Cloud Security. The person should be capable of troubleshooting the common engagement issues.
Job Description: https://jobs.lever.co/Chaleit/a449755f-021b-48d6-a2e7-6cd2547036a7

Contact email: Ankit Prateek [email protected]

Company: Cyware Labs

Job Role: Security Solution Architect
Location: Bengaluru, Karnataka or Mumbai, Maharashtra
Technical requirements:
Serve as the security solution architect / engineer responsible for the planning and design of both on-prem and cloud-based infrastructure solutions and complex customer environments. Serve as a Lead Security Architect on project teams (including users, developers), to plan, coordinate, analyze, design, review and implement Cyware’s Software. Understand the customer use cases and map it to the Cyware products and deliver the end to end working solution to the customer.
Job Description: https://cyware.freshteam.com/jobs/Nk_bTJfZa9Q0/solution-architect

Contact email: https://cyware.freshteam.com/jobs/Nk_bTJfZa9Q0/solution-architect

Job Role: Managing Consultant
Location: Pune, MH (work from office)
Technical requirements:

  • Bachelor’s degree with a focus on IT, Computer Science, Engineering, Math or the Sciences
  • 6+ years of work experience with vulnerability assessments including network, web or mobile application penetration testing
  • Experience with offensive toolkits used for network and application penetration testing
  • Strong communication skills, both verbal and written

If you have any of the below, that would be a plus:

  • Programming experience in one or more of the following languages: Ruby, Python, Perl, C, C++, Java, and C# • GXPN, GPEN, OSCP, CISSP, GWAPT or similar certifications
  • Experience building a service line offering
  • People management experience, including managing performance expectations
Job Description:

A day in the life of a NetSPI Managing Consultant:

  • Perform web, mobile, and thick application penetration tests
  • Perform external, internal, and wireless network penetration tests
  • Create and deliver penetration test reports to clients
  • Collaborate with clients to create remediation strategies that will help improve their security posture
  • Share technical expertise and best practices for service line creation
  • Manage and provide technical guidance for direct reports
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services
  • Help define and document internal, technical, and service processes and procedures
  • Contribute to the community through the development of tools, presentations, white papers, and blogs
  • Other duties as assigned

Job Role: Senior Product Security Engineer
Location: Hyderabad, India or Remote-India
Technical requirements:
In order to be successful in this role, we need someone who has:

  • A passion for security
  • 5+ years of experience in an application security role performing vulnerability assessments, and penetration testing
  • In-depth knowledge of security vulnerabilities and testing methodologies
  • Experience with manual source code review in languages such as: Java, JavaScript, Python, Ruby or PHP
  • Proficiency in at least one language: Java, Python or Javascript
  • Coding experience and developer proficiency in at least one language: Java, Python or Javascript
  • Knowledge of ServiceNow Technologies is an advantage

Job Description:

What you get to do in this role:

  • Perform application security testing on ServiceNow products
  • Identify, communicate, and recommend remediation of Security Vulnerabilities
  • Identify, communicate, and recommend remediation of Security Vulnerabilities
  • Help lead security discussions with the other engineering teams
  • Work with the development teams to help to create secure products
  • Participate in research to identify new attack vectors and adopt new methodologies

Contact Email: Apply on https://careers.servicenow.com/


Job Role: Staff Product Security Engineer
Location: Hyderabad / Remote, India
Technical requirements:
In order to be successful in this role, we need someone who has:

  • A passion for security
  • 8+ years of experience in an application security testing role
  • Coding experience and developer proficiency in at least one language: Java, Python or Javascript
  • In-depth knowledge of application security vulnerabilities and testing methodologies
  • Experience with manual source code review in languages such as: Java, JavaScript, Python, Ruby or PHP
  • Deep understanding of web application architecture and design principles
  • Worked in a Product Security team is a plus.
  • Knowledge of ServiceNow Scripting is an advantage

Job Description:

What you get to do in this role:

  • Identify the important strategic product security focus areas for the team
  • Help lead security discussions with the other engineering teams
  • Participate in research to identify new attack vectors and adopt new methodologies
  • Perform application security testing on ServiceNow products
  • Audit source code of the platform and applications
  • Audit source code of the platform and applications

Contact Email: Apply on https://careers.servicenow.com/


Job Role: Staff Product Security Engineer
Location: Hyderabad, India
Technical requirements:
In order to be successful in this role, we need someone who has:

  • 7 - 10+ years related experience or equivalent combination of education and experience.
  • Must be willing to work on weekend to assist with Priority Incidents
  • Deep understanding of Security Operations Center and Security Incident Response Team protocols and procedures
  • A solid foundation in networking fundamentals, with a deep understanding of TCP/IP and other core protocols
  • Background working with data logging applications (e.g. Splunk)
  • Knowledge of internet security protocols and technologies
  • The ability to analyze event and systems logs, perform forensic analysis, analyze malware, and other incident response related data, as needed
  • Experience in threat hunting i.e. using threat intel to proactively and iteratively investigate these potential risks and finding suspicious behavior in the network
  • Experience in host and memory forensics (including live response) for Windows, OSX, and/or Linux
  • Broad knowledge across the Security domain, as well as deep focus in one (or more) areas such as Public Cloud Security and Detection and/or response tool development
  • Writing internal playbooks/handbooks for security processes and tooling
  • Coding/scripting experience in one or more general purpose languages
  • Knowledge of attack vectors, threat tactics and attacker techniques
  • Understanding of Windows and Linux operating systems and command line tools
  • GSEC, GCIH, GCIA, GMON or CISSP certifications are a plus

Job Description:

As a Staff IR Analyst in Incident Response team, what you get to do in this role:

  • ServiceNow has a large and highly skilled security team located at multiple sites globally and as part of a rapidly growing organization ServiceNow is looking to expand its Incident Response Team in Hyderabad
  • This role is an opportunity to support both ServiceNow’s commercial customers as well as its Enterprise environment. As a rapidly growing organization ServiceNow offers the opportunity for growth while learning its commercial and federal environments and the ServiceNow platform itself.
  • You will be a key member of the Global Incident Response team; monitoring the tools and systems that defend ServiceNow’s production and corporate environment, define relationships between seemingly unrelated events through deductive reasoning, come up with ways to do things faster, better and more effectively while maintaining a laser focus on quality.
  • You will be a key member of the Global Incident Response team; monitoring the tools and systems that defend ServiceNow’s production and corporate environment, define relationships between seemingly unrelated events through deductive reasoning, come up with ways to do things faster, better and more effectively while maintaining a laser focus on quality.
  • You will work on a geographically diverse team to respond to threats that may arise against our infrastructure, and track incidents to closure, working across functional teams.
  • You will work with the various teams to maintain up-to-date baselines for the secure configuration and operations of all in-place devices, whether they be under direct control (i.e., security tools) or not (i.e., workstations, servers, network devices, etc.). Using this baseline data you will conduct analysis of security vulnerabilities.
  • You may be called upon to assist with the deployment, integration and initial configuration of new security solutions or enhancements to existing security solutions; including network, and systems to improve overall platform security.
  • You may be called upon to assist with the deployment, integration and initial configuration of new security solutions or enhancements to existing security solutions; including network, and systems to improve overall platform security.

Contact Email: Apply on https://careers.servicenow.com/


Company: Honeywell Technology Solutions Lab Pvt. Ltd.

Job Role: Senior Cyber Security Manager
Location: Bangalore
Technical requirements: Product Security, Software Development, Secure SDLC, Leading global teams
Job Description: The Senior Product Security Manager reports to the HBT Global Product Security Leader and will be responsible for leading, managing, and directing the HBT-wide efforts to provide product security expertise to product development teams throughout all phases of the SDLC.

  • Lead, manage, and direct a team of Product Security professionals
  • Support product releases and project product security process activities including threat modeling, final security reviews, threat vulnerability assessment, etc. for all software and firmware development in HBT
  • Audit key process deliverables related to security for correctness and completeness.
  • Provide product security-related coaching/mentoring and security expertise for all software and firmware development teams in HBT
  • Drive efforts with the development teams to quantify residual product risk and identification of appropriate security controls.
  • Drive a standardized set of security product requirements into product and service offerings.

Basic Qualifications
  • Bachelor’s degree in computer science or software engineering, or equivalent
  • Minimum15 years of software development experience with at least 5 years in secure software development processes.
  • Minimum 5 years of experience leading global teams

Contact email: [email protected]


Job Role: Advanced Cyber Sec Archt/Engr
Location: Bangalore
Technical requirements:IAM, Active Directory, Azure AD, ADFS, LDAP, Scripting.
Job Description: As a Sr. Identity Engineer (IAM) at Honeywell, this is your opportunity to join our Cybersecurity team and provide valuable, secure user experiences for Honeywell employees, partners, and customers.
You will work with the latest technologies and provide world-class engineering solutions with Directory Services, ensuring that they align with the direction set by best practices and defined standards within Honeywell. Your job responsibilities will include the following:

  • Serve as a subject matter expert for Directory Services under the IAM services portfolio
  • Understand how the service works from a business/end-user/technical perspective
  • Have command of the service including its capabilities and proper use
  • Execute proof-of-concepts guided by Sr. Identity Architect and Service Manager
  • Complete assigned project/tasks in a timely manner
  • Interact with key stakeholders and project/program teams to understand their requirements and engineer solutions based on best practices
  • Ensure proper oversight for quality assurance of IAM artifacts
  • Enforce adherence to architectural standards/principles
  • Proactively provide feedback regarding infrastructure IAM engineering methodologies, standards, and leading projects
  • Minimize technical exposure and risk on projects
  • Delivers and manages a highly available, stable, and secure Directory Services environment
  • Participates in the testing (e.g. planning and execution) related to performance, disaster recovery, and business continuity for AD and AAD
  • Analytical/Decision Making Responsibilities
  • Understands the art of the possible, compares various architectural options based on feasibility/impact and proposes actionable plans
  • Demonstrated strong analytical skills and technical problem-solving skills
  • Analyzes and resolves complex issues (e.g. performance problems and outages) to the Directory Services environments, escalating to and working with vendors and clients as required
  • Ability to analyze and operate at different levels of abstraction
  • Ability to balance what is strategically right with what is practically realistic
  • Evangelize optimal options based on documented best practices and standards
  • Maintain accurate and timely tracking of activities
  • Incident/Problem management
  • Manage incident/problem lifecycle including ticketing and stakeholder interaction
  • Manage incident/problem lifecycle including ticketing and stakeholder interaction
  • Follow documented troubleshooting procedures for standard support situations
  • Escalate to and collaborate with tier 3 support (i.e., Sr. Identity Architect), when necessary
  • Run book activities
  • Monitor the service from both a functional and infrastructure perspective
  • Execute service reports and gather/report metrics
  • Address service problems
  • Document changes and/or new activities
  • Works under the supervision of the Sr. Cyber Security Manager, and interacts with Senior/Portfolio Architect

YOU MUST HAVE:
  • Bachelors or graduate degree in a computer-related field such as Computer Science, Computer Information Systems or equivalent.
  • 5+ years developing, engineering, and implementing enterprise class IAM/security solutions.

Contact email: [email protected]


Company: Cyber Sec Archt/Engr II

Job Role: Senior Cyber Security Manager
Location: Bangalore
Technical requirements: Security architecture artifacts security policies security threats, vulnerabilities, and risks.
Job Description: The Cyber Security Engineer requires business acumen; technical acuity; and the ability to think, communicate and write at various levels of abstraction. Security architects are expected to advocate for security requirements and objectives while ensuring that security architectures and practices do not impede the needs of the business. The security architect will be expected to evaluate new services, vendors, applications, and security tools, among other items, from a technical perspective, and to translate the risk characteristics of these activities and functions into enterprise cyber risk terms.

  • Contribute to the development and maintenance of security architecture artifacts (e.g., models, templates, standards and procedures)
  • Serve as a security expert, helping project teams comply with enterprise security policies, industry regulations, and best practices.
  • Evaluate and develop secure solutions, based on approved security architectures.
  • Analyze business impact and exposure, based on emerging security threats, vulnerabilities, and risks.
  • Communicate security risks and solutions to business partners and IT staff

YOU MUST HAVE:
  • 3+ years experience in a security field required

Contact email: [email protected]

Job Role: NDK/C++ Developer-Android/Linux
Location: New Delhi-Netaji Subhash Place
Technical requirements:

  • 2-3+ years of experience in software development
  • C/C++ development experience
  • x86/x64 Assembly OR ARM Assembly
  • x86/x64 Assembly OR ARM Assembly
  • Network programming

Desired Skills:
  • Linux Kernel development
  • Reverse engineering skills
  • ARM Assembly
  • Knowledge of software security principles

Contact email: [email protected]

Job Role: Security Technical Program Manager
Location: Hyderabad / Bangalore
Job Description: https://salesforce.wd1.myworkdayjobs.com/External_Career_Site/job/India---Hyderabad/Technical-Program-Manager_JR155645
Contact email: [email protected]


Job Role: Product Manager-Network Security
Location: Bangalore
Job Description: https://salesforce.wd1.myworkdayjobs.com/External_Career_Site/job/India---Bangalore/Product-Manager---Network-Security_JR155644
Contact email: [email protected]


Job Role: Security Analyst
Location: Hyderabad / Bangalore
Job Description: https://salesforce.wd1.myworkdayjobs.com/External_Career_Site/job/India---Hyderabad/Security-Analyst_JR155966
Contact email: [email protected]


Job Role: Senior Security Product Manager
Location: Hyderabad / Bangalore
Job Description: https://www.myworkday.com/salesforce/d/inst/15$392530/9925$301314.htmld
Contact email: [email protected]


Job Role: Backend Distributed System Engineer-SMTS/LMTS
Location: Hyderabad / Bangalore
Job Description: https://www.myworkday.com/salesforce/d/inst/15$392530/9925$303790.htmld
Contact email: [email protected]


Company: Cobalt Labs

Job Role: Freelancer Pentester
Location: Remote
Technical requirements:
Deep understanding of application security. Ability to communicate effectively. Collaborative spirit. The following certifications are a plus: CREST, PenTest+, GPEN, CEH, OSCP, AWS, CISSP, eCPPT, eWAPT, OSCE, and OSWE. Please note that this is not an entry-level/junior position.
Job Description: Deep understanding of application security. Ability to communicate effectively. Collaborative spirit. The following certifications are a plus: CREST, PenTest+, GPEN, CEH, OSCP, AWS, CISSP, eCPPT, eWAPT, OSCE, and OSWE. Please note that this is not an entry-level/junior position.

Contact email: [email protected]

Company: BugBase Security

Job Role: Security Engineer
Location: On-site Bengaluru Office (Koramangala)
Technical requirements:
Ideal Requirements Experience with HackTheBox and/or TryHackMe Experience with web exploitation(XSS, CSRF, SQLi etc), burpsuite, etc Prior bug bounty experience Certifications like CEH, OSCP, OSWE etc (Bonus) - No Degree Requirement.
Job Description: We're looking for people who enjoy working with security and have deep and broad Experience in web security. Join us in our growth as a crucial member of a startup and gain Experience!
Work would include, testing bugbase internal infrastructure including Cloud deployments DevSecOps, making weekly CTF challenges for BugTrials, and triaging bug bounty reports for other companies.

Contact email: Work would include, testing bugbase internal infrastructure including Cloud deployments DevSecOps, making weekly CTF challenges for BugTrials, and triaging bug bounty reports for other companies. [email protected]

Job Role: Manager, R&D (Product Security)
Location: Gurgaon/Bangalore
Technical requirements:

  • Relevant Security certifications - CISM/CISSP/CISA/CRISC
  • Experience in leading security assessment teams covering different security domains
  • Experience and knowledge of security assessment methodologies and tools
  • Flexible to overlap a couple of hours with the US time zone

Job Description:
  • Responsible for managing high performance team of security engineers to provide world class security assessment services across organization.
  • Deliver Information Security processes, like Information Security Vulnerability Management, Risk Management and Penetration Testing.
  • Support Information Security reporting through the Information Security Key Performance and Key Risk indicators and overall Program updates.
  • Provides leadership and direction by setting the context, defining accountabilities, tasks, and assignments and establishing boundaries for decision-making and approvals.
  • Provides managerial direction, guidance, context setting and translates the strategic picture for direct reports.
  • Demonstrated understanding of information security governance/compliance frameworks and methodologies (e.g. ISO 17799/27001, COBIT, NIST, PCI, SOC2)
  • Communicating frequently across all project disciplines to ensure project team and senior management are aware of upcoming milestones and risks/issues.
  • Develop Individual KRAs, Development plans and conduct staffing reviews.

Contact Email: Apply on [email protected], [email protected]


Job Role: Principal Engineer – Product Security (Embedded/IoT Devices)
Location: Gurgaon/Bangalore
Technical requirements:

  • Total experience of 13-15 years having expertise in Embedded & IoT security.
  • Experience in conducting Vulnerability Assessment and Penetration Testing of connected/non-connected devices.
  • The candidate must have a great inclination towards conducting deep rooted research on Em-bedded/IoT systems/devices in order to uncover the vulnerabilities and methods that can be used to compromise device security.
    He/She should have proven credentials in different phases for compromising device security:-
    • Initial Reconnaissance (Understand product’s internal as well as communication mecha-nism)
    • Attack Surface Identification – Physical, Wireless, Wired & Web
    • Threat Modelling (Identification of Actors and Entity Boundary)
    • Protocol Endpoints - Read/Understand Protocol Specification, Gather Sample Protocol Implementations & Protocol Simulators, Testing with the Simulators and ability to write Scripts to Interact with The device
    • Firmware Vulnerability Analysis - Firmware Extraction and Analysing Firmware, Vulnera-bility Analysis, Manual Reversing of Binaries, Understand Firmware Update Process
    • Hardware Vulnerability Analysis - Identify and analyse Hardware Debug ports, Memory extraction and analysis, Malicious data injection
  • Expertise/Familiarity with Hardware & Radio Security Testing:-
    • Data extraction from external flash memory, UART Debug port testing, JTAG Debug port testing, Hardcoded Sensitive information in firmware, sensor manipulation, Bluetooth testing, Zigbee testing, Wi-Fi testing, MQTT testing, Radio testing etc..
  • Must be flexible, independent and self-motivated.
  • Ability to conceptualize, eager to learn and detail orientation.
  • Strong written and oral communication skills.
  • Good to have: Prior work experience in medical devices.

Contact Email: Apply on [email protected], [email protected]


Job Role: Senior Staff Engineer - Product Security (Web & Mobile VAPT)
Location: Gurgaon/Bangalore
Technical requirements & Job Descriptions:
What you will do:

  • Act as subject matter expert on VAPT and Security Testing for the respective Stryker divisions.
  • Perform attacks and identify vulnerabilities on interfaces (like USB, WiFi, Ethernet, Bluetooth etc.) as well as applications (Thick Client, Web and Mobile).
  • Responsible for understanding the overall technical capabilities of a product, typical deployment scenarios and be able to set up production equivalent infrastructure in the lab.
  • Partner with product teams to perform threat modeling and provide guidance on security requirements.
  • Help product teams to prioritize roadmap items in order to balance security and business risks.
  • Work closely with product teams in assessing the risks, mitigations and preparing responses to external organizations.
  • Evaluate application security tools for internal consumption.
  • Assist in the vulnerability management process including verifying identified vulnerabilities with product teams and tracking them through the vulnerability lifecycle.
  • Perform manual and automated security code review for complex Desktop, Web and Mobile applications to identify security flaws.
  • Leverage DevSecOps to embed security testing into all phases of SDLC to eliminate the repeated steps and drive efficiency.
  • Work with Infrastructure teams to maintain lab infrastructure (firewalls, servers and network appliances etc.).
  • Develop policy, procedure, and guidelines pertaining to Vulnerability Assessment and Penetration testing of Medical Devices (Embedded, Web and Mobile).
  • Own the queries related to process, timeline, and status of lab activities and corresponding testing activities being conducted.

What you need:
  • Bachelor’s in Software/Electronics Engineering or equivalent degree.
  • Overall 12+ years of hands-on experience involving software and hardware platforms
    • 8+ years of experience in the field of security involving Thick Client, Web and Mobile applications.
    • 2+ years of experience in testing interfaces like USB, WiFi, Ethernet, Bluetooth etc.
    • 2+ years of experience in software development.
  • Experience in automation of routine tasks using tools like Jenkins and/or scripting languages such as PowerShell, Ruby or Python.
  • Understanding of Cloud based environments like Azure and AWS.
  • At least one professional certification like ECSA Practical/CPENT/LPT/OSCP/OSWE/OSCE or similar involving practical exams.
  • Published white papers/ blogs on Security Research.
  • Excellent communication and interpersonal skills.
  • Thorough working knowledge of ethical hacking tools (e.g., Kali Linux, Nessus, Nmap, Burp Suite, Metasploit, Nessus)
  • Deep technical understanding of common security vulnerabilities and risks, as well as countermeasures and compensating controls
  • Mobile Apps Code Review (iOS, Android) experience is desired
  • Vulnerability and Penetration Testing using tools like Kali, Nessus, Burp Suite, Qualys etc.

Contact Email: Apply on [email protected], [email protected]

Job Role: Principal / Senior Security Engineer
Location: Pune or Remote
Technical Requirement:Threat Modeling, SAST/DAST, Secure Architectural Code Reviews
Job Description: https://bit.ly/3zUE1CQ
Contact email: [email protected]


Job Role: Director, Security Engineering
Location: Pune (Hybrid)
Technical Requirement:Experience in the Security Architecture, Security Testing, and/or Security Engineering, (>10 years) of experience in the InfoSec space, (>7 years) of experience in leading and managing large-scale security teams. This role requires a seasoned security engineering leader.
Job Description: https://bit.ly/3PVRqjN
Contact email: [email protected]


Job Role: Lead Software Engineer - Global Security Engineering
Location: Pune or Remote
Technical Requirement:

  • Strong Analytical skills with experience in any backend programming language (Go / Java / C++ / Python)
  • Experience with CI/CD tools
  • Typescript / Cloud Experience (Highly preferred)
  • Cybersecurity Domain Knowledge (Highly preferred)
  • Strong Business Skills

Job Description: https://bit.ly/3oWcsTg
Contact email: [email protected]

Company: Carrier Technology India Ltd
Job Role: Product Security Architect
Location: Hyderabad, India or Gdansk, Poland
Technical Requirement:

  • Bachelor’s degree in computer science, software engineering, or equivalent
  • 10+ years of software engineering experience, w/7 years developing secure systems or controls
  • 7+ years system design & architecture experience – new product, innovation and/or maintenance
  • Project leadership, product development and production experience
  • Exceptional cross-functional and multi-domain practical aptitude
  • Wide-ranging technical domain proficiency (ex., Embedded, Enterprise, Mobile, Cloud, etc.)
  • Concurrent cybersecurity and engineering depth and breadth subject matter expertise
  • Subject matter expertise of secure software development lifecycle, practices and activities
  • Subject matter expertise of design principles and architecture level security concepts
  • Exceptional communication, mentorship, diplomatic and leadership skills
  • Exceptional interpersonal skills with the ability to professionally dive change management campaigns, as well as effectively support diverse groups, help negotiate and set priorities, and resolve conflicts among high level project stakeholders
  • Demonstrable creativity, with a record of innovation and strategic vision
  • Demonstrated experience and a strong track record for working w/ cross-functional, engineering, business and executive leadership, handling complex challenges, delivering results
Job Description:
  • Supports all phases of the secure engineering, support and development lifecycles in collaboration with multifunctional leaders, stakeholders, contributors and businesses
  • Drives secure development principles, practices and activities within engineering and production in order to help quantify cybersecurity risk, issues and defects within Carrier offerings, such that teams may appropriately characterize, manage and remediate to standard
  • Coordinates with production in order to help scope projects, define cybersecurity requirements, perform gap analysis, refine functional requirements, and road map residual cyber risk
  • Architects solutions and designs security controls in order to meet secure design requirements, support cyber related feature and function development, implement security related modules and solutions, and fosters new product development and innovation
  • Supports Product Security activities such as threat modeling, security assurance testing, cyber risk assessment, security reviews and threat vulnerability assessment for all offerings
  • Provides technical leadership and oversight in design reviews
  • Provides timely and expert support to resolve difficult problems and issues
  • Provides cybersecurity thought leadership, advisement, mentorship, training and engagement
  • Provides audit, analysis, and review support for certification, standards, governance, process, infrastructure, deployment and all collaborative mission areas, Carrier brands and businesses
  • Supports ad hoc initiatives within the cybersecurity-engineering domain, as needed
  • Provides critical support as required for all major Product Security missions, including Secure Development, Operations and Innovation
  • Positions Carrier in a world class position within the Product Security domain

Contact email: [email protected]

Company: Mercedes Benz R&D India
Job Role: Cloud Security Consultant
Location: Bangalore
Technical Requirement:Azure/AWS Security
Job Description: Expertise in implementing security controls and threat protection in Azure/AWS, designing and implementing secure IAM concepts, protecting data, applications, and networks in Azure/AWS cloud and hybrid cloud environments. Knowledge on designing and implementing security in SDLC. Maintain security posture, identifying and remediating vulnerabilities by using a variety of security tools, implementing threat protection, and responding to security incident escalations.
Contact email: [email protected]

Job Role: Senior Intelligence Consultant
Location: India
Technical Requirement:
Minimum of 5-8+ years’ experience in an analytical role (intelligence, military, cyber, security operations, etc.) working with enterprise clients and/or executive level decision makers

  • BA/BS required or equivalent combination of education and experience
  • Previous experience working in a consultative role directly with clients, preferably with SaaS
  • Experience collaborating and communicating with technical and non-technical personnel, both technically and strategically (from deep geeks to top execs!)
  • Ability to troubleshoot challenging technical concerns
  • Ability to travel a minimum of 30% required;
  • Bonus Points
  • Experience growing and leading teams, mentorship
  • Familiarity with Python, JSON, SQL, or cURL
  • Focused/in-depth technical certifications
  • Education or experience in Data Science and/or Machine Learning
  • Knowledge in use of Salesforce, Gainsight, G-Suite
  • Foreign Language fluency

Job Description:
We’re seeking a Senior Security Intelligence Consultant to support our Enterprise customer accounts. In this role, you will interact with all roles in cyber security, such as Threat Intelligence, SOC, Vulnerability Management, Incident Response, Threat Hunting, Red/Blue/Purple Teams, Pen Testing, security architecture, and C-Suite. Your days will be spent working closely with our customers to ensure they are effectively using our threat intelligence services as well as doing the following:
  • Drive all aspects of enterprise customer engagement and enablement, including support requests, regular touch points, quarterly intelligence reviews, and ad-hoc intelligence requirements.
  • Plan and manage the customer success life cycle, tailoring key components to meet the client’s specific security requirements.
  • Support user training and enablement, helping to integrate our data and technology into daily workflows and processes.
  • Develop strategic account plans to ensure value recognition from the end user to executive management, while showing measured improvement in client maturity.
  • As the first Intelligence Services member on the ground in India, establish a scalable program in the region and mentor new consultants as the team grows
  • Act as the “voice of the customer” for our Product team.
  • Be a problem-solving expert, mining our platform for the most value.

Contact email: [email protected]

Job Role: Manager, Technical Services - India
Location: Remote (India)
Technical Requirement:HackerOne is looking for an experienced leader to join the Technical Services team. In this role you will lead a team of technical security analysts responsible for validating security vulnerability reports from some of the world's best hackers. The ideal candidate will be a dynamic and motivating leader with experience managing a distributed team of technical employees. This role reports to the Senior Director of Technical Services and can be performed from anywhere in India.
Job Description: https://jobs.lever.co/hackerone/911ac4ee-03c1-4ef4-9fa5-6f8f66827f55
Contact email: [email protected]


Mentors For Resume & Career Clinic:

  • Burgess S Cooper - EY
  • Deepam Kanjani - Snowflake
  • Hetal Mangela - Snowflake
  • Mario Heiderich - Cure53
  • Neelu Tripathy - Thought Works
  • Pavan Mohan - ServiceNow
  • Rahul Das - Microsoft
  • Riyaz Walikar - Koudle
  • Vinod Vasudevan - Carrier
  • Yogi Kapur - Salesforce

The first step towards a new job or change in career in any industry is to have a proper resume and Infosec is no different. It is always a great thing to have a solid resume of your skills and experience to make an impression on the hiring team.

At Nullcon, we have a focused track with guidance to provide the necessary tools and knowledge required for infosec job search, career development, and advancement. Resume reviews and career guidance sessions provided by industry recruiters and leaders.

Our community reviewers who have a huge amount of combined experience in interviewing, and vetting candidates are ready to put their experiences to work to help you by providing feedback and guidance.

Sign up for resume review and career guidance (Walk-ins will be allowed on first come first serve basis based upon availability) Please bring a paper copy of your current resume or your own laptop with a digital copy (no USB).

Sponsored by:

snowflake-logo

InfoSec Job Openings from NULLCON Sponsors & Exhibitors

We are here to provide a compilation of a number of job opportunities, well-curated to suit your profile by the top InfoSec firms that are also supporting Nullcon Goa 2022. If you are looking for a new position or career change, definitely have a look at the list.


Copyright © 2023 | Nullcon India | International Security Conference | All Rights Reserved